FedRAMP Security
tekgenceBrooklyn (NY)
About the role
Job Title: FedRAMP Security Assessment Specialist
Location: Remote
Experience:
8+ Years We are seeking a Senior Cloud Security Assessment Engineer with strong experience in security assessments, cloud security, risk management, and regulatory compliance.
Key Responsibilities:
Perform security assessments, control validation, vulnerability reviews, and risk analysis across cloud and enterprise environments. Assess security controls against frameworks such as FedRAMP, NIST 800-53, ISO 27001, BSI IT-Grundschutz, or similar standards. Review AWS, Azure, GCP, or Open Stack environments and provide actionable remediation recommendations. Support audit readiness, assessment documentation, security findings, risk reports, SSP/POA&M or similar compliance artifacts. Work with infrastructure and Dev Sec Ops teams to integrate security controls into CI/CD and cloud deployments. Use automation and scripting to support security assessment and remediation activities.
Required Skills:
8+ years of Information Security / Cybersecurity experience. Strong security assessment, risk management, control validation, and compliance experience. Hands-on experience with Terraform, Ansible, Python, and Bash/Shell. Strong cloud security experience with AWS, Azure, GCP, or Open Stack. Experience with vulnerability scanning, CI/CD, Dev Sec Ops, and Infrastructure-as-Code. Knowledge of Kubernetes/container security is preferred. CISSP, CISA, or similar certification is a plus.
Before you apply
Applying takes about a minute. These four things decide how fast it moves after that.
Your profile is current
It's what we read first. Occupations, seniority and locations matter more than a long history.
Two examples you can talk through
Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.
A number in mind
What you're on now and what would make you move. We negotiate better when we know both.
Your notice period
Employers plan around it, and it's the question that stalls offers most often.
Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.
More like this
